Staff Cybersecurity Engineer
Tink
Company Description
Visa is a world leader in payments and technology, with over 259 billion payments transactions flowing safely between consumers, merchants, financial institutions, and government entities in more than 200 countries and territories each year. Our mission is to connect the world through the most innovative, convenient, reliable, and secure payments network, enabling individuals, businesses, and economies to thrive while driven by a common purpose – to uplift everyone, everywhere by being the best way to pay and be paid.
Make an impact with a purpose-driven industry leader. Join us today and experience Life at Visa.
Job Description
Visa’s Cyber Security organization is expanding its Global Application Access Governance (AAG) program and is seeking an experienced IAM Engineer to join its Warsaw-based Center of Excellence. Reporting to the local IAM Director and working closely with global IAM leadership, this pivotal role will deliver advanced, AI-driven identity governance solutions that enhance security and operational efficiency across Visa’s global environment.
This position offers the opportunity to lead key IAM engineering initiatives, mentor junior team members, and work on complex enterprise-scale projects that integrate Zero-Trust principles, automation, and evolving compliance requirements.
Essential Functions:
1. Strategic Execution & Alignment
Act as a key technical liaison between the Warsaw IAM team and the global AAG program, ensuring local deliverables align with the global roadmap and security strategy defined by leadership.
Contribute to multi-year implementation plans that incorporate Zero-Trust principles, regulatory requirements, and AI/ML-driven enhancements.
2. Application Access Governance – Delivery & Oversight
Lead the technical execution of onboarding applications and application components into IAM governance as aligned with their authentication and authorization models, ensuring compliance with the respective IAM controls and technical security requirements.
Track and report relevant KPIs, KRIs, SLAs, and OKRs, providing actionable insights to IAM leadership.
Utilize analytics tools (Excel, Power BI, Tableau, Python) to identify access-risk patterns and propose improvements.
Support IAM control enforcement, resolve exceptions, and drive process improvements in collaboration with the IAM Director and the global Cyber IAM teams.
3. AI & Automation
Develop and implement AI/ML and automation solutions to streamline IAM process/control workflows and reduce manual effort.
Support junior engineers in building and maintaining AI models for IAM control gaps detection and process optimization.
Collaborate with IAM technology teams to prototype and deploy automation capabilities.
4. Engineering, Operational Excellence & Support
Lead a team or workstream of IAM engineers and analysts to improve and maintain access governance controls.
Implement automation for compliance reporting, IAM control validation, and evidence collection.
Provide high-level technical support for IAM-related requests and incidents, ensuring thorough root cause analysis, timely resolution, and excellent customer service.
5. Stakeholder & Change Management
Collaborate with Application Development and business teams to integrate IAM controls and security into new initiatives.
Support IAM adoption and change management activities to minimize business disruption during rollouts.
6. Manual IAM Configuration Validation
Perform manual validation of IAM security configurations for applications that cannot be auto validated, ensuring alignment with security and compliance requirements.
7. Risk, Compliance & Audit Readiness
Maintain IAM-related risk and control documentation in line with SOX, GDPR, PCI-DSS, and other applicable standards.
Assist in audit preparation and evidence collection, partnering with the IAM Director to manage remediation efforts.
8. Team Development & Mentoring
Mentor junior IAM engineers and analysts, providing technical guidance and knowledge sharing.
Promote continuous learning through training, certifications, and hands-on experimentation with emerging IAM, AI/ML, and cloud-security technologies.
This is a hybrid position. Expectation of days in office will be confirmed by your hiring manager.
Qualifications
Basic Qualifications
•5+ years of relevant work experience with a bachelor’s degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8 years of relevant work experience.
Preferred Qualifications
•6 or more years of work experience with a bachelor’s degree or 4 or more years of relevant experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) or up to 3 years of relevant experience with a PhD.
•8+ years of progressive cybersecurity experience, including 5+ years specializing in Identity & Access Management.
•3+ years in a technical team-lead or senior engineering role within IAM.
•Strong knowledge of IAM frameworks (NIST, ISO 27001, Zero-Trust) and tools (SailPoint, Okta, CyberArk, Azure AD).
•Solid understanding of authentication/authorization architectures, cloud IAM, and API security.
•Proficiency in scripting/programming (Python, PowerShell, Java, etc.) and data analytics.
•Experience implementing AI/ML or automation in IAM processes.
•Strong English communication skills (Polish a plus).
•Bachelor’s degree in Computer Science, Engineering, or related field, relevant certifications (CISSP, CISM, CISA, CCSP) preferred.
Additional Information
Visa is an EEO Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Visa will also consider for employment qualified applicants with criminal histories in a manner consistent with EEOC guidelines and applicable local law.